Weekend Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: Board70

CSSLP Exam Dumps - ISC certification Questions and Answers

Question # 34

DIACAP applies to the acquisition, operation, and sustainment of any DoD system that collects, stores, transmits, or processes unclassified or classified information since December 1997. What phases are identified by DIACAP? Each correct answer represents a complete solution. Choose all that apply.

Options:

A.

System Definition

B.

Validation

C.

Identification

D.

Accreditation

E.

Verification

F.

Re-Accreditation

Buy Now
Question # 35

Which of the following statements about the authentication concept of information security management is true?

Options:

A.

It establishes the users' identity and ensures that the users are who they say they are.

B.

It ensures the reliable and timely access to resources.

C.

It determines the actions and behaviors of a single individual within a system, and identifies that particular individual.

D.

It ensures that modifications are not made to data by unauthorized personnel or processes.

Buy Now
Question # 36

Which of the following programming languages are compiled into machine code and directly executed by the CPU of a computer system? Each correct answer represents a complete solution. Choose two.

Options:

A.

C

B.

Microosft.NET

C.

Java EE

D.

C++

Buy Now
Question # 37

Which of the following penetration testing techniques automatically tests every phone line in an exchange and tries to locate modems that are attached to the network?

Options:

A.

Demon dialing

B.

Sniffing

C.

Social engineering

D.

Dumpster diving

Buy Now
Question # 38

John works as a professional Ethical Hacker. He has been assigned the project of testing the security of www.we-are-secure.com. In order to do so, he performs the following steps of the pre-attack phase successfully: Information gathering Determination of network range Identification of active systems Location of open ports and applications Now, which of the following tasks should he perform next?

Options:

A.

Perform OS fingerprinting on the We-are-secure network.

B.

Map the network of We-are-secure Inc.

C.

Install a backdoor to log in remotely on the We-are-secure server.

D.

Fingerprint the services running on the we-are-secure network.

Buy Now
Question # 39

You work as a systems engineer for BlueWell Inc. Which of the following tools will you use to look outside your own organization to examine how others achieve their performance levels, and what processes they use to reach those levels?

Options:

A.

Benchmarking

B.

Six Sigma

C.

ISO 9001:2000

D.

SEI-CMM

Buy Now
Question # 40

In which of the following cryptographic attacking techniques does an attacker obtain encrypted messages that have been encrypted using the same encryption algorithm?

Options:

A.

Chosen plaintext attack

B.

Chosen ciphertext attack

C.

Ciphertext only attack

D.

Known plaintext attack

Buy Now
Question # 41

In which of the following types of tests are the disaster recovery checklists distributed to the members of disaster recovery team and asked to review the assigned checklist?

Options:

A.

Parallel test

B.

Simulation test

C.

Full-interruption test

D.

Checklist test

Buy Now
Question # 42

The IAM/CA makes certification accreditation recommendations to the DAA. The DAA issues accreditation determinations. Which of the following are the accreditation determinations issued by the DAA? Each correct answer represents a complete solution. Choose all that apply.

Options:

A.

IATT

B.

IATO

C.

DATO

D.

ATO

E.

ATT

Buy Now
Question # 43

The Phase 4 of DITSCAP C&A is known as Post Accreditation. This phase starts after the system has been accredited in Phase 3. What are the process activities of this phase? Each correct answer represents a complete solution. Choose all that apply.

Options:

A.

Security operations

B.

Maintenance of the SSAA

C.

Compliance validation

D.

Change management

E.

System operations

F.

Continue to review and refine the SSAA

Buy Now
Exam Code: CSSLP
Exam Name: Certified Secure Software Lifecycle Professional
Last Update: Feb 22, 2025
Questions: 0
CSSLP pdf

CSSLP PDF

$25.5  $84.99
CSSLP Engine

CSSLP Testing Engine

$28.5  $94.99
CSSLP PDF + Engine

CSSLP PDF + Testing Engine

$255  $850